Hallo,
Ich hatte (und habe) unter Android auch ein Problem mit dem ziert.
Das root zertifikat von Startcom ist am 22.10.!!!!! Abgelaufen.
Das wollt ich Euch auch noch mitteilen, ich hab aber mal wieder ein Gedächtnis wie ein Sieb.
Gruß
Christoph
Ankündigung
Einklappen
Keine Ankündigung bisher.
- √ - WireGate-Shop / Probleme mit Zertifikat
Einklappen
Dieses Thema ist geschlossen.
X
X
-
gab es nicht mal einen Trojaner / Virus / Worm / Backdoor der was am Zertifikatsstore gedreht hat?
Evt. sollten wir das in einen separaten Thread auslagern?
Stefan
Einen Kommentar schreiben:
-
Schon sehr suspekt, sollte man in jedem Fall ernst nehmen!
Von oben nach unten sollte das wie folgt aussehen (gebs mal als Text, insb. auf den SHA1 fingerprint gucken):
Makki
RootCA:
Intermediate CA:Code:SHA1 Fingerprint=A3:F1:33:3F:E2:42:BF:CF:C5:D1:4E:8F:39:42:98:40:68:10:D1:A0 Certificate: Data: Version: 3 (0x2) Serial Number: 45 (0x2d) Signature Algorithm: sha256WithRSAEncryption Issuer: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate Signing, CN=StartCom Certification Authority Validity Not Before: Sep 17 19:46:37 2006 GMT Not After : Sep 17 19:46:36 2036 GMT Subject: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate Signing, CN=StartCom Certification Authority Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (4096 bit) Modulus: 00:c1:88:db:09:bc:6c:46:7c:78:9f:95:7b:b5:33: 90:f2:72:62:d6:c1:36:20:22:24:5e:ce:e9:77:f2: 43:0a:a2:06:64:a4:cc:8e:36:f8:38:e6:23:f0:6e: 6d:b1:3c:dd:72:a3:85:1c:a1:d3:3d:b4:33:2b:d3: 2f:af:fe:ea:b0:41:59:67:b6:c4:06:7d:0a:9e:74: 85:d6:79:4c:80:37:7a:df:39:05:52:59:f7:f4:1b: 46:43:a4:d2:85:85:d2:c3:71:f3:75:62:34:ba:2c: 8a:7f:1e:8f:ee:ed:34:d0:11:c7:96:cd:52:3d:ba: 33:d6:dd:4d:de:0b:3b:4a:4b:9f:c2:26:2f:fa:b5: 16:1c:72:35:77:ca:3c:5d:e6:ca:e1:26:8b:1a:36: 76:5c:01:db:74:14:25:fe:ed:b5:a0:88:0f:dd:78: ca:2d:1f:07:97:30:01:2d:72:79:fa:46:d6:13:2a: a8:b9:a6:ab:83:49:1d:e5:f2:ef:dd:e4:01:8e:18: 0a:8f:63:53:16:85:62:a9:0e:19:3a:cc:b5:66:a6: c2:6b:74:07:e4:2b:e1:76:3e:b4:6d:d8:f6:44:e1: 73:62:1f:3b:c4:be:a0:53:56:25:6c:51:09:f7:aa: ab:ca:bf:76:fd:6d:9b:f3:9d:db:bf:3d:66:bc:0c: 56:aa:af:98:48:95:3a:4b:df:a7:58:50:d9:38:75: a9:5b:ea:43:0c:02:ff:99:eb:e8:6c:4d:70:5b:29: 65:9c:dd:aa:5d:cc:af:01:31:ec:0c:eb:d2:8d:e8: ea:9c:7b:e6:6e:f7:27:66:0c:1a:48:d7:6e:42:e3: 3f:de:21:3e:7b:e1:0d:70:fb:63:aa:a8:6c:1a:54: b4:5c:25:7a:c9:a2:c9:8b:16:a6:bb:2c:7e:17:5e: 05:4d:58:6e:12:1d:01:ee:12:10:0d:c6:32:7f:18: ff:fc:f4:fa:cd:6e:91:e8:36:49:be:1a:48:69:8b: c2:96:4d:1a:12:b2:69:17:c1:0a:90:d6:fa:79:22: 48:bf:ba:7b:69:f8:70:c7:fa:7a:37:d8:d8:0d:d2: 76:4f:57:ff:90:b7:e3:91:d2:dd:ef:c2:60:b7:67: 3a:dd:fe:aa:9c:f0:d4:8b:7f:72:22:ce:c6:9f:97: b6:f8:af:8a:a0:10:a8:d9:fb:18:c6:b6:b5:5c:52: 3c:89:b6:19:2a:73:01:0a:0f:03:b3:12:60:f2:7a: 2f:81:db:a3:6e:ff:26:30:97:f5:8b:dd:89:57:b6: ad:3d:b3:af:2b:c5:b7:76:02:f0:a5:d6:2b:9a:86: 14:2a:72:f6:e3:33:8c:5d:09:4b:13:df:bb:8c:74: 13:52:4b Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:TRUE X509v3 Key Usage: critical Certificate Sign, CRL Sign X509v3 Subject Key Identifier: 4E:0B:EF:1A:A4:40:5B:A5:17:69:87:30:CA:34:68:43:D0:41:AE:F2 X509v3 Authority Key Identifier: keyid:4E:0B:EF:1A:A4:40:5B:A5:17:69:87:30:CA:34:68:43:D0:41:AE:F2 X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.23223.1.1.1 CPS: http://www.startssl.com/policy.pdf CPS: http://www.startssl.com/intermediate.pdf User Notice: Organization: Start Commercial (StartCom) Ltd. Number: 1 Explicit Text: Limited Liability, read the section *Legal Limitations* of the StartCom Certification Authority Policy available at http://www.startssl.com/policy.pdf Netscape Cert Type: SSL CA, S/MIME CA, Object Signing CA Netscape Comment: StartCom Free SSL Certification Authority Signature Algorithm: sha256WithRSAEncryption 8e:8f:e7:dc:94:79:7c:f1:85:7f:9f:49:6f:6b:ca:5d:fb:8c: fe:04:c5:c1:62:d1:7d:42:8a:bc:53:b7:94:03:66:30:3f:b1: e7:0a:a7:50:20:55:25:7f:76:7a:14:0d:eb:04:0e:40:e6:3e: d8:88:ab:07:27:83:a9:75:a6:37:73:c7:fd:4b:d2:4d:ad:17: 40:c8:46:be:3b:7f:51:fc:c3:b6:05:31:dc:cd:85:22:4e:71: b7:f2:71:5e:b0:1a:c6:ba:93:8b:78:92:4a:85:f8:78:0f:83: fe:2f:ad:2c:f7:e4:a4:bb:2d:d0:e7:0d:3a:b8:3e:ce:f6:78: f6:ae:47:24:ca:a3:35:36:ce:c7:c6:87:98:da:ec:fb:e9:b2: ce:27:9b:88:c3:04:a1:f6:0b:59:68:af:c9:db:10:0f:4d:f6: 64:63:5c:a5:12:6f:92:b2:93:94:c7:88:17:0e:93:b6:7e:62: 8b:90:7f:ab:4e:9f:fc:e3:75:14:4f:2a:32:df:5b:0d:e0:f5: 7b:93:0d:ab:a1:cf:87:e1:a5:04:45:e8:3c:12:a5:09:c5:b0: d1:b7:53:f3:60:14:ba:85:69:6a:21:7c:1f:75:61:17:20:17: 7b:6c:3b:41:29:5c:e1:ac:5a:d1:cd:8c:9b:eb:60:1d:19:ec: f7:e5:b0:da:f9:79:18:a5:45:3f:49:43:57:d2:dd:24:d5:2c: a3:fd:91:8d:27:b5:e5:eb:14:06:9a:4c:7b:21:bb:3a:ad:30: 06:18:c0:d8:c1:6b:2c:7f:59:5c:5d:91:b1:70:22:57:eb:8a: 6b:48:4a:d5:0f:29:ec:c6:40:c0:2f:88:4c:68:01:17:77:f4: 24:19:4f:bd:fa:e1:b2:20:21:4b:dd:1a:d8:29:7d:aa:b8:de: 54:ec:21:55:80:6c:1e:f5:30:c8:a3:10:e5:b2:e6:2a:14:31: c3:85:2d:8c:98:b1:86:5a:4f:89:59:2d:b9:c7:f7:1c:c8:8a: 7f:c0:9d:05:4a:e6:42:4f:62:a3:6d:29:a4:1f:85:ab:db:e5: 81:c8:ad:2a:3d:4c:5d:5b:84:26:71:c4:85:5e:71:24:ca:a5: 1b:6c:d8:61:d3:1a:e0:54:db:ce:ba:a9:32:b5:22:f6:73:41: 09:5d:b8:17:5d:0e:0f:99:90:d6:47:da:6f:0a:3a:62:28:14: 67:82:d9:f1:d0:80:59:9b:cb:31:d8:9b:0f:8c:77:4e:b5:68: 8a:f2:6c:f6:24:0e:2d:6c:70:c5:73:d1:de:14:d0:71:8f:b6: d3:7b:02:f6:e3:b8:d4:09:6e:6b:9e:75:84:39:e6:7f:25:a5: f2:48:00:c0:a4:01:da:3f
wiregate.deCode:SHA1 Fingerprint=A1:AC:E4:04:6B:6E:33:22:32:B8:7E:CF:B6:F3:7A:07:63:72:01:47 Certificate: Data: Version: 3 (0x2) Serial Number: 26 (0x1a) Signature Algorithm: sha1WithRSAEncryption Issuer: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate Signing, CN=StartCom Certification Authority Validity Not Before: Oct 24 20:57:09 2007 GMT Not After : Oct 24 20:57:09 2017 GMT Subject: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate Signing, CN=StartCom Class 2 Primary Intermediate Server CA Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:e2:4f:39:2f:a1:8c:9a:85:ad:08:0e:08:3e:57: f2:88:01:21:1b:94:a9:6c:e2:b8:db:aa:19:18:46: 3a:52:a1:f5:0f:f4:6e:8c:ea:96:8c:96:87:79:13: 40:51:2f:22:f2:0c:8b:87:0f:65:df:71:74:34:43: 55:b1:35:09:9b:d9:bc:1f:fa:eb:42:d0:97:40:72: b7:43:96:3d:ba:96:9d:5d:50:02:1c:9b:91:8d:9c: c0:ac:d7:bb:2f:17:d7:cb:3e:82:9d:73:eb:07:42: 92:b2:cd:64:b3:74:55:1b:b4:4b:86:21:2c:f7:78: 87:32:e0:16:e4:da:bd:4c:95:ea:a4:0a:7e:b6:0a: 0d:2e:8a:cf:55:ab:c3:e5:dd:41:8a:4e:e6:6f:65: 6c:b2:40:cf:17:5d:b9:c3:6a:0b:27:11:84:77:61: f6:c2:7c:ed:c0:8d:78:14:18:99:81:99:75:63:b7: e8:53:d3:ba:61:e9:0e:fa:a2:30:f3:46:a2:b9:c9: 1f:6c:80:5a:40:ac:27:ed:48:47:33:b0:54:c6:46: 1a:f3:35:61:c1:02:29:90:54:7e:64:4d:c4:30:52: 02:82:d7:df:ce:21:6e:18:91:d7:b8:ab:8c:27:17: b5:f0:a3:01:2f:8e:d2:2e:87:3a:3d:b4:29:67:8a: c4:03 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: critical CA:TRUE X509v3 Key Usage: critical Certificate Sign, CRL Sign X509v3 Subject Key Identifier: 11:DB:23:45:FD:54:CC:6A:71:6F:84:8A:03:D7:BE:F7:01:2F:26:86 X509v3 Authority Key Identifier: keyid:4E:0B:EF:1A:A4:40:5B:A5:17:69:87:30:CA:34:68:43:D0:41:AE:F2 Authority Information Access: OCSP - URI:http://ocsp.startssl.com/ca CA Issuers - URI:http://www.startssl.com/sfsca.crt X509v3 CRL Distribution Points: Full Name: URI:http://www.startssl.com/sfsca.crl Full Name: URI:http://crl.startssl.com/sfsca.crl X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.23223.1.2.1 CPS: http://www.startssl.com/policy.pdf CPS: http://www.startssl.com/intermediate.pdf Signature Algorithm: sha1WithRSAEncryption 9d:07:e1:ee:90:76:31:67:16:45:70:8c:cb:84:8b:4b:57:68: 44:a5:89:c1:f2:7e:cb:28:8b:f5:e7:70:77:d5:b6:f4:0b:21: 60:a5:a1:74:73:24:22:80:d6:d8:ba:8d:a2:62:5d:09:35:42: 29:fb:39:63:45:0b:a4:b0:38:1a:68:f4:95:13:cc:e0:43:94: ec:eb:39:1a:ec:57:29:d9:99:6d:f5:84:cd:8e:73:ae:c9:dc: 6a:fa:9e:9d:16:64:93:08:c7:1c:c2:89:54:9e:77:80:90:f6: b9:29:76:eb:13:67:48:59:f8:2e:3a:31:b8:c9:d3:88:e5:5f: 4e:d2:19:3d:43:8e:d7:92:ff:cf:38:b6:e1:5b:8a:53:1d:ce: ac:b4:76:2f:d8:f7:40:63:d5:ee:69:f3:45:7d:a0:62:c1:61: c3:75:ed:b2:7b:4d:ac:21:27:30:4e:59:46:6a:93:17:ca:c8: 39:2d:01:73:65:5b:e9:41:9b:11:17:9c:c8:c8:4a:ef:a1:76: 60:2d:ae:93:ff:0c:d5:33:13:9f:4f:13:ce:dd:86:f1:fc:f8: 35:54:15:a8:5b:e7:85:7e:fa:37:09:ff:8b:b8:31:49:9e:0d: 6e:de:b4:d2:12:2d:b8:ed:c8:c3:f1:b6:42:a0:4c:97:79:df: fe:c3:a3:9f:a1:f4:6d:2c:84:77:a4:a2:05:e1:17:ff:31:dd: 9a:f3:b8:7a:c3:52:c2:11:11:b7:50:31:8a:7f:cc:e7:5a:89: cc:f7:86:9a:61:92:4f:2f:94:b6:98:c7:78:e0:62:4b:43:7d: 3c:de:d6:9a:b4:10:a1:40:9c:4b:2a:dc:b8:d0:d4:9e:fd:f1: 84:78:1b:0e:57:8f:69:54:42:68:7b:ea:a0:ef:75:0f:07:a2: 8c:73:99:ab:55:f5:07:09:d2:af:38:03:6a:90:03:0c:2f:8f: e2:e8:43:c2:31:e9:6f:ad:87:e5:8d:bd:4e:2c:89:4b:51:e6: 9c:4c:54:76:c0:12:81:53:9b:ec:a0:fc:2c:9c:da:18:95:6e: 1e:38:26:42:27:78:60:08:df:7f:6d:32:e8:d8:c0:6f:1f:eb: 26:75:9f:93:fc:7b:1b:fe:35:90:dc:53:a3:07:a6:3f:83:55: 0a:2b:4e:62:82:25:ce:66:30:5d:2c:e0:f9:19:1b:75:b9:9d: 98:56:a6:83:27:7a:d1:8f:8d:59:93:fc:3f:73:d7:2e:b4:2c: 95:d8:8b:f7:c9:7e:c7:fc:9d:ac:72:04:1f:d2:cc:17:f4:ed: 34:60:9b:9e:4a:97:04:fe:dd:72:0e:57:54:51:06:70:4d:ef: aa:1c:a4:82:e0:33:c7:f4
Code:SHA1 Fingerprint=50:BC:CC:C2:C7:D7:69:01:D4:1E:A9:98:7F:85:81:35:BE:7D:DA:5C Certificate: Data: Version: 3 (0x2) Serial Number: 23311 (0x5b0f) Signature Algorithm: sha1WithRSAEncryption Issuer: C=IL, O=StartCom Ltd., OU=Secure Digital Certificate Signing, CN=StartCom Class 2 Primary Intermediate Server CA Validity Not Before: Mar 17 15:26:13 2011 GMT Not After : Mar 17 22:49:35 2013 GMT Subject: description=382495-3gaQDvXPS7VIDK1k, C=DE, ST=Bayern, L=Hohenbrunn, O=Elaborated Networks GmbH, OU=StartCom Verified Certificate Member, CN=*.wiregate.de/emailAddress=hostmaster@wiregate.de Subject Public Key Info: Public Key Algorithm: rsaEncryption Public-Key: (2048 bit) Modulus: 00:ba:df:49:9a:57:a8:b2:82:9d:70:26:a1:84:07: 98:a5:89:8e:89:7d:61:55:eb:6d:a1:ba:a2:b0:85: 4d:34:da:60:aa:2a:1c:25:d0:37:fb:d5:92:6d:dd: 71:2a:16:11:1c:2e:72:2b:cc:c4:3e:38:56:d6:40: b1:05:f2:f2:3e:38:c5:cf:b7:e1:2e:d9:8b:fd:6f: 2d:32:fd:84:e4:f7:de:79:e3:ac:64:fb:76:68:e5: b1:00:fd:c3:21:1c:49:88:bd:3e:c2:e2:2d:a7:b8: cc:a8:98:f6:14:5c:8b:1e:d3:53:a2:bb:d8:af:53: 66:85:3f:90:65:98:fd:4d:09:99:b3:9e:2b:46:2d: df:a9:88:0a:17:65:2a:cb:27:f4:e8:fa:ee:82:ef: 85:48:f9:f6:df:7d:d3:80:d4:5e:12:01:96:b8:8b: 71:7f:6d:f0:07:f8:31:af:d9:24:7c:4f:1e:48:3f: 66:f3:0a:fd:94:63:58:02:4c:b7:b2:26:bd:a5:bc: 9f:20:e1:58:3d:24:9b:bb:00:82:f6:b0:82:26:0a: 8f:20:9d:6e:e4:6e:74:67:35:71:0f:22:3f:a8:1e: 4a:d9:83:76:01:8c:de:bd:ea:85:09:2a:c2:48:77: 45:2c:70:74:7b:91:57:76:33:ea:4e:94:05:9a:36: 7f:09 Exponent: 65537 (0x10001) X509v3 extensions: X509v3 Basic Constraints: CA:FALSE X509v3 Key Usage: Digital Signature, Key Encipherment, Key Agreement X509v3 Extended Key Usage: TLS Web Client Authentication, TLS Web Server Authentication X509v3 Subject Key Identifier: B1:E7:00:9D:9E:FE:CE:92:C8:B8:4E:09:35:91:EE:6B:8A:46:1B:5C X509v3 Authority Key Identifier: keyid:11:DB:23:45:FD:54:CC:6A:71:6F:84:8A:03:D7:BE:F7:01:2F:26:86 X509v3 Subject Alternative Name: DNS:*.wiregate.de, DNS:wiregate.de X509v3 Certificate Policies: Policy: 1.3.6.1.4.1.23223.1.2.2 CPS: http://www.startssl.com/policy.pdf CPS: http://www.startssl.com/intermediate.pdf User Notice: Organization: StartCom Ltd. Number: 1 Explicit Text: Limited Liability, see section *Legal Limitations* of the StartCom Certification Authority Policy available at http://www.startssl.com/policy.pdf X509v3 CRL Distribution Points: Full Name: URI:http://crl.startssl.com/crt2-crl.crl Authority Information Access: OCSP - URI:http://ocsp.startssl.com/sub/class2/server/ca CA Issuers - URI:http://aia.startssl.com/certs/sub.class2.server.ca.crt X509v3 Issuer Alternative Name: URI:http://www.startssl.com/ Signature Algorithm: sha1WithRSAEncryption d1:44:3e:d6:01:04:47:ac:7c:28:33:3b:1a:bb:b3:2b:4c:6f: 35:9a:22:79:59:9f:f0:8b:a7:41:2c:7d:63:26:ee:76:f5:6d: b7:14:9e:ec:e9:68:17:04:2f:2a:4f:5e:0d:04:dd:18:a2:37: 5c:23:09:9c:19:21:e2:c4:fd:89:c4:52:97:5c:f8:32:02:29: 33:73:9d:b5:8a:73:4a:c4:a9:77:4a:7b:18:a4:aa:02:d5:80: 84:c3:3a:b1:3f:c0:21:17:86:01:42:b5:6f:84:41:fe:d6:0a: fa:eb:fe:93:3e:05:27:26:d6:0a:24:ff:f2:25:56:60:fe:50: 08:3b:63:a3:45:81:1a:00:80:25:64:62:b5:3c:f9:e0:03:4d: 30:17:b3:6d:5e:ab:15:af:df:53:4b:ec:36:73:7c:7d:b0:98: 1b:62:58:f8:04:31:01:81:1d:ba:b3:f9:72:8c:b6:85:3e:6b: a3:5a:70:90:8a:3d:c7:89:fa:3f:53:ac:89:72:19:c8:31:a3: 0a:dd:03:b7:b9:0a:e3:66:bf:2f:a3:00:6b:3d:56:76:10:50: a7:38:97:5c:f8:c3:d7:21:4a:e7:f5:bb:47:36:51:cb:1f:bb: ed:f4:f5:f7:ad:f3:71:8b:fb:47:3c:12:23:45:ea:0d:25:ea: 1f:46:a8:3e issuer= /C=IL/O=StartCom Ltd./OU=Secure Digital Certificate Signing/CN=StartCom Class 2 Primary Intermediate Server CAAngehängte Dateien
Einen Kommentar schreiben:
-
Hallo,
danke für Deine Bemühungen. OS ist Win7 Sp1. Fehlercode:
"shop.wiregate.de verwendet ein ungültiges Sicherheitszertifikat.
Dem Zertifikat wird nicht vertraut, weil das Aussteller-Zertifikat abgelaufen ist.
(Fehlercode: sec_error_expired_issuer_certificate)"
Gruß Mirko
Einen Kommentar schreiben:
-
Exakte Fehlermeldung?
OS,IE-version (die Root-CA Zertifikate kommen vom Windows, nicht vom FF AFAIK!)
Ansonsten mal "Zertifikat anzeigen" und die beiden darüber "not valid before/after"..
Makki
Einen Kommentar schreiben:
-
Ne, Browser ist Firefox 17 und nagelneu (gestern). Kann also auch nicht sein.
Nagut, dann versuch ich es nachher nochmal.
Gruß Mirko
Einen Kommentar schreiben:
-
Nö, kann nicht sein, wahrscheinlicher ist das der lokale Zertifikats-Store/Browser Asbach uralt ist
So in etwa mind. 5J..
Makki
Einen Kommentar schreiben:
-
- √ - WireGate-Shop / Probleme mit Zertifikat
Hallo,
ich wollte auch gerade bestellen. Ich bekomme beim einloggen allerdings eine Warnung, das Euer Sicherheitszertifikat abgelaufen ist? Kann das sein?
Danke.
Gruß MirkoStichworte: -


Einen Kommentar schreiben: